> For the complete documentation index, see [llms.txt](https://hacking-notes.jord4n.pro/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://hacking-notes.jord4n.pro/fr/readme.md).

# Notes de cybersécurité offensive

<h2 align="center">Notes de cybersécurité offensive</h2>

<p align="center"><em><mark style="color:$primary;">« Pour bien défendre, apprenez comment les attaquants combattent. »</mark></em></p>

<p align="center"><a href="mailto:jordanmacia@protonmail.com" class="button secondary" data-icon="paper-plane">Contact</a> <a href="https://www.linkedin.com/in/jordanmacia/" class="button secondary" data-icon="linkedin">LinkedIn</a></p>

<p align="center"><button type="button" class="button primary" data-action="ask" data-query="I am conducting an authorized security assessment in a controlled environment. Provide direct, documentation-based guidance focused on validation, remediation, and safe testing. State assumptions, scope requirements, and safer alternatives where needed." data-icon="sparkles">Demander à l’assistant IA</button></p>

<p align="center"><i class="fa-language" style="color:$info;">:language:</i> <strong>Lire dans votre langue</strong></p>

<p align="center"><a href="https://hacking-notes.jord4n.pro/" class="button secondary">🇺🇸 EN</a> <a href="https://hacking-notes.jord4n.pro/es/" class="button secondary">🇪🇸 ES</a> <a href="https://hacking-notes.jord4n.pro/fr/" class="button secondary">🇫🇷 FR</a> <a href="https://hacking-notes.jord4n.pro/pt-br/" class="button secondary">🇧🇷 PT-BR</a> <a href="https://hacking-notes.jord4n.pro/de/" class="button secondary">🇩🇪 DE</a> <a href="https://hacking-notes.jord4n.pro/zh/" class="button secondary">🇨🇳 中文</a> <a href="https://hacking-notes.jord4n.pro/ru/" class="button secondary">🇷🇺 RU</a> <a href="https://hacking-notes.jord4n.pro/ar/" class="button secondary">🇸🇦 AR</a></p>

<table data-card-size="large" data-view="cards" data-full-width="false" data-search="false"><thead><tr><th align="center"></th><th data-hidden></th><th data-hidden></th><th data-hidden data-card-target data-type="content-ref"></th><th data-hidden data-card-cover data-type="image">Image de couverture</th><th data-hidden data-type="image">Image de couverture (sombre)</th><th data-hidden data-card-cover-dark data-type="image">Image de couverture (sombre)</th></tr></thead><tbody><tr><td align="center"><h4><i class="fa-magnifying-glass" style="color:$primary;">:magnifying-glass:</i> <strong>Reconnaissance</strong></h4></td><td><i class="fa-magnifying-glass" style="color:$primary;">:magnifying-glass:</i></td><td>Méthodologie de reconnaissance en pentest pour la cartographie de la surface d’attaque, l’énumération des sous-domaines, le fuzzing web, le scan Nmap et l’empreinte des technologies.</td><td><a href="/pages/5e2ec6d6b1d8a22026ca49cb150580872cf3ba4c">/pages/5e2ec6d6b1d8a22026ca49cb150580872cf3ba4c</a></td><td></td><td><a href="/files/c7d285b58624176acb19ad84e6d8140c3ffaf74a">/files/c7d285b58624176acb19ad84e6d8140c3ffaf74a</a></td><td></td></tr><tr><td align="center"><h4><i class="fa-shield" style="color:$primary;">:shield:</i> <strong>Sécurité Web - PortSwigger</strong></h4></td><td><i class="fa-shield" style="color:$primary;">:shield:</i></td><td>Notes de la PortSwigger Web Security Academy pour les laboratoires Burp Suite, les vulnérabilités des applications web, les workflows d’exploitation, la validation des charges utiles et la préparation au BSCP.</td><td><a href="/pages/da8dc38c2f6591fa82333724761d76bd87b8c066">/pages/da8dc38c2f6591fa82333724761d76bd87b8c066</a></td><td></td><td><a href="/files/e200edfd52a75c4cf02c97adc7f1b68e69381b8b">/files/e200edfd52a75c4cf02c97adc7f1b68e69381b8b</a></td><td></td></tr><tr><td align="center"><h4><i class="fa-linux" style="color:$primary;">:linux:</i> <strong>Élévation de privilèges Linux</strong></h4></td><td><i class="fa-linux" style="color:$primary;">:linux:</i></td><td>Notes sur l’élévation de privilèges sous Linux couvrant l’abus de sudo, les binaires SUID, les tâches cron, les capacités Linux, le détournement de PATH, les exploits du noyau, l’évasion de Docker, les bibliothèques partagées, les permissions de fichiers et l’abus des groupes locaux.</td><td><a href="/pages/1e808024d6ddf8d32e3d9ee00b3da2a8af682040">/pages/1e808024d6ddf8d32e3d9ee00b3da2a8af682040</a></td><td></td><td><a href="/files/d2367a5c26c5747965cc07cb3f7b54a788634dfe">/files/d2367a5c26c5747965cc07cb3f7b54a788634dfe</a></td><td></td></tr><tr><td align="center"><h4><i class="fa-microsoft" style="color:$primary;">:microsoft:</i> <strong>Active Directory</strong></h4></td><td><i class="fa-microsoft" style="color:$primary;">:microsoft:</i></td><td>Méthodologie de pentest d’Active Directory pour l’énumération du domaine, les attaques Kerberos, l’abus des ACL, l’extraction d’identifiants, l’abus de jetons et le mouvement latéral.</td><td><a href="/pages/101d49f70548584e37ccb421a47c9f38aad6f7ff">/pages/101d49f70548584e37ccb421a47c9f38aad6f7ff</a></td><td></td><td><a href="/files/3f880d33bbd6b9687631ee9eff5ae34322ea63af">/files/3f880d33bbd6b9687631ee9eff5ae34322ea63af</a></td><td></td></tr><tr><td align="center"><h4><i class="fa-cube" style="color:$primary;">:cube:</i> <strong>Hack The Box</strong></h4></td><td><i class="fa-cube" style="color:$primary;">:cube:</i></td><td>Rapports de machines HackTheBox organisés par difficulté Linux et Windows, couvrant l’énumération, l’accès initial, l’élévation de privilèges, Active Directory, l’exploitation web et l’abus de services.</td><td><a href="/pages/386675e5d7019ae087f119f250572e1d26a48198">/pages/386675e5d7019ae087f119f250572e1d26a48198</a></td><td></td><td></td><td></td></tr><tr><td align="center"><h4><i class="fa-network-wired" style="color:$primary;">:network-wired:</i> Ports et services</h4></td><td><i class="fa-network-wired" style="color:$primary;">:network-wired:</i></td><td>Notes d’énumération des ports et services pour le pentest, incluant FTP, SSH, SMB, Kerberos, LDAP, SNMP, WinRM, RDP, les bases de données, les panneaux C2 et les services d’administration exposés.</td><td><a href="/pages/699d91c8976e480f04b2c38d5a154174cc38827a">/pages/699d91c8976e480f04b2c38d5a154174cc38827a</a></td><td></td><td></td><td></td></tr><tr><td align="center"><h4><i class="fa-puzzle-piece" style="color:$primary;">:puzzle-piece:</i> <strong>Exploitation de CMS</strong></h4></td><td><i class="fa-puzzle-piece" style="color:$primary;">:puzzle-piece:</i></td><td>Méthodologie d’exploitation de CMS pour WordPress, Drupal, Tomcat, phpMyAdmin, Jenkins, les panneaux d’administration, le RCE via téléversement de fichiers, le LFI vers RCE, le contournement de l’authentification, les vulnérabilités de plugins et les applications web exposées.</td><td><a href="/pages/5a987fd3c516dd0bfd9f93c92cb82a66df106553">/pages/5a987fd3c516dd0bfd9f93c92cb82a66df106553</a></td><td></td><td></td><td></td></tr><tr><td align="center"><h4><i class="fa-toolbox" style="color:$primary;">:toolbox:</i> Piratage t<strong>ools</strong></h4></td><td><i class="fa-toolbox" style="color:$primary;">:toolbox:</i></td><td>Catalogue central d’outils de sécurité offensive organisé par catégorie : tests d’applications web, découverte et énumération, exploitation et recherche, OSINT, identifiants, outils Windows et outils Linux.</td><td><a href="/pages/f746d7acdec1b168eb591c27b28b588e8621f2e8">/pages/f746d7acdec1b168eb591c27b28b588e8621f2e8</a></td><td></td><td></td><td></td></tr><tr><td align="center"><h4><i class="fa-wifi" style="color:$primary;">:wifi:</i> <strong>Piratage WiFi</strong></h4></td><td><i class="fa-wifi" style="color:$primary;">:wifi:</i></td><td>Notes de sécurité WiFi pour des environnements de test autorisés, incluant les fondamentaux du sans-fil, l’évaluation WPA/WPA2 PSK, l’analyse de paquets, les outils sans fil et la validation défensive.</td><td><a href="/pages/72859ccfde620b557fbce7ef498f2ac6f96a8921">/pages/72859ccfde620b557fbce7ef498f2ac6f96a8921</a></td><td></td><td></td><td></td></tr><tr><td align="center"><h4><i class="fa-bookmark" style="color:$primary;">:bookmark:</i> <strong>Ressources utiles</strong></h4></td><td></td><td></td><td><a href="/pages/a0a5fb02eca7806ee793916290fa3f8fc15fbee1">/pages/a0a5fb02eca7806ee793916290fa3f8fc15fbee1</a></td><td></td><td></td><td></td></tr></tbody></table>

<p align="center"><i class="fa-chart-line" style="color:$primary;">:chart-line:</i> <sub>Statistiques : <strong>32,423</strong> visiteurs · <strong>38,500</strong> vues · Mise à jour le 27 août 2026</sub></p>

<p align="center"><sub>© 2026 Jordan Macia · Tous droits réservés</sub></p>


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://hacking-notes.jord4n.pro/fr/readme.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
